Trust & compliance

Trust you can audit.

Everything a regulated buyer needs to verify — methodology, data handling, and compliance posture — documented in one place.

01

Reliability methodology

Double- and triple-blind reads, continuous ground-truth injection, reliability-weighted consensus. Documented, reproducible, and open to client audit. Physician equivalence is validated empirically by sampling against licensed reference panels.

02

Data residency & security

Client data is reviewed in secure enclaves and never exported from its jurisdiction. View-only physician access. No training on client PHI. BAA-ready.

Secure in-region enclave holding PHI, with a view-only window used by a remote physician and export blocked
03

De-identification

Safe Harbor or Expert Determination pathways, with de-identification records and provenance metadata delivered alongside every dataset.

De-identification pathways: Safe Harbor and Expert Determination, each producing de-identified records with provenance metadata
04

Certifications & roadmap

Processes built HIPAA-aligned from day one. SOC 2 Type II and ISO 27001 in progress; ISO 13485 and GxP alignment on the roadmap for device- and pharma-grade engagements.

StandardStatusNotes
HIPAAAligned todayProcesses built HIPAA-aligned from day one.
SOC 2 Type IIin progressAudit preparation underway.
ISO 27001in progressAudit preparation underway.
ISO 13485roadmapFor device-grade engagements.
GxP alignmentroadmapFor pharma-grade engagements.

Aligned vs. targeted — stated exactly.

05

Neutrality

Verikris is independent — no ownership by, or exclusive alignment with, any model builder.

Bring your security questionnaire.

We'll walk through it with you — methodology, data handling, and current compliance posture, on the record.

Book a call